top of page

Safety & Security

Last Updated: May 24, 2026
Effective Date: June 2020

1. Introduction

One Check Away, Inc. ("the Company") is committed to ensuring the safety and security of our website users, their data, and our digital infrastructure. This policy outlines the measures we take to protect against unauthorized access, data breaches, and other cybersecurity threats while maintaining compliance with applicable laws and regulations.

2. Purpose

This policy establishes guidelines for:

  • Protecting user data and privacy

  • Preventing unauthorized access to systems

  • Ensuring secure online transactions

  • Complying with legal and regulatory requirements

  • Responding to security incidents

 
3. Scope

This policy applies to:

  • All users of the One Check Away, Inc. website (employees, customers, partners, and third-party vendors)

  • All data collected, processed, or stored on the website

  • All systems, networks, and applications associated with the website

 

4. Data Protection & Privacy
4.1. Data Collection & Use
  • We collect only necessary personal information (e.g., name, email, payment details) with user consent.

  • Data is used solely for the purposes stated at the time of collection.

  • We do not sell or share personal data with third parties without explicit consent, except as required by law.

4.2. Data Storage & Encryption
  • Sensitive data (e.g., payment information) is encrypted using industry-standard protocols (TLS/SSL).

  • Data is stored securely in access-controlled databases with encryption at rest.

  • Regular backups are performed to prevent data loss.

4.3. User Access Controls
  • Multi-factor authentication (MFA) is enforced for administrative accounts.

  • Employees and contractors are granted access based on the principle of least privilege.

  • Passwords must meet complexity requirements and be updated periodically.

5. Website Security Measures
5.1. Secure Development Practices
  • Regular security audits and penetration testing are conducted.

  • Code is reviewed for vulnerabilities before deployment.

  • Third-party software is kept updated to patch known security flaws.

5.2. Protection Against Cyber Threats
  • Firewalls, intrusion detection/prevention systems (IDS/IPS), and anti-malware tools are in place.

  • Distributed Denial-of-Service (DDoS) mitigation strategies are implemented.

  • Phishing and social engineering awareness training is provided to staff.

5.3. Secure Transactions
  • Payment processing complies with PCI-DSS standards.

  • All financial transactions are encrypted end-to-end.

  • Fraud detection mechanisms monitor for suspicious activity.

6. Incident Response & Reporting
6.1. Incident Detection & Response
  • A Security Incident Response Team (SIRT) is designated to handle breaches.

  • Monitoring systems alert administrators of suspicious activity in real time.

  • Incident response protocols include containment, investigation, and remediation.

6.2. Breach Notification
  • In the event of a data breach affecting user data, affected parties will be notified within 72 hours, as required by law.

  • Regulatory authorities will be informed in compliance with applicable regulations (e.g., GDPR, CCPA).

7. Compliance & Legal Requirements
  • The Company adheres to relevant data protection laws, including but not limited to:

    • General Data Protection Regulation (GDPR) (if applicable)

    • California Consumer Privacy Act (CCPA)

    • Payment Card Industry Data Security Standard (PCI-DSS)

8. User Responsibilities
  • Users must create strong passwords and keep them confidential.

  • Users should report suspicious activity or security concerns immediately to [support email].

  • Users must not attempt unauthorized access, hacking, or data scraping.

9. Policy Review & Updates

This policy will be reviewed annually or as needed to reflect changes in technology, regulations, or business operations. Updates will be communicated to stakeholders as necessary.

10. Contact Information

For questions or concerns regarding this policy, please contact:
One Check Away, Inc.
wecare@1checkaway.org

813.822.4923

401 E. Jackson St., Ste 2340, Tampa, FL 33602

By using the One Check Away, Inc. website, you acknowledge and agree to comply with this Safety and Security Policy.

We Need Your Support Today!

One Check Away, Inc.

We're Making a Way for Those One Check Away.

FEIN: 85-2075020

Serving Sarasota County

Manatee County, SW Florida

1680 Fruitville Road

Suite 205

Sarasota, FL 34236

Email: wecare@1checkaway.org

Phone: 941.231.9300

Disabled Veteran

  • Woman Owned

One Check Away Updates

Check Out What We Do & How We Do It

One Check Away LLC Logo

Thanks for joining the OCAI Family!

One Check Away, Inc is. a proud member of the

National Association of Free & Charitable Clinics

  • Facebook
  • Instagram
  • X
  • LinkedIn
  • TikTok

Quick Links

© 2020 by One Check Away, IncTerms of Use  Privacy Policy  |  Safety & Security

bottom of page